[nsp] bgp vulnerability?

Don Bowman don at sandvine.com
Tue Apr 20 15:42:47 EDT 2004


Anyone have any details on this?
http://story.news.yahoo.com/news?tmpl=story&cid=528&e=1&u=/ap/20040420/ap_on
_hi_te/internet_threat

from the wording it sounds like it is BGP they are talking
about, and faking a reset by guessing the sequence number
to be in window.

I know cisco has a MD5 option (RFC2385, 
Protection of BGP Sessions via the TCP MD5 Signature Option)



More information about the cisco-nsp mailing list